CVE-1999-0595: Low severity Microsoft Windows NT vulnerability
A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Enable clearing of the system page file at shutdown so the page file is wiped and does not retain sensitive information.
Microsoft Windows (system page file) ClearPageFileAtShutdown = enabled
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0595?
CVE-1999-0595 is considered a moderate severity vulnerability due to the potential exposure of sensitive information.
How do I fix CVE-1999-0595?
To mitigate CVE-1999-0595, ensure that the system page file is securely erased during shutdown through system configuration adjustments.
What systems are affected by CVE-1999-0595?
CVE-1999-0595 affects Windows NT 3.5.1, Windows NT 4.0, and Windows 2000.
What are the consequences of CVE-1999-0595?
The consequences of CVE-1999-0595 may include unauthorized access to sensitive data that was stored in the system page file.
Is it necessary to update to a newer operating system to avoid CVE-1999-0595?
While updating to a newer operating system can help avoid CVE-1999-0595, proper configuration of the existing systems is also crucial.